Splunk Enterprise Security

Is there way to use hash or file name matches for threatlist?

mcronkrite
Splunk Employee
Splunk Employee
0 Karma
1 Solution

jervin_splunk
Splunk Employee
Splunk Employee

No, this is not currently supported. There is work going on in this area for a forthcoming release of Enterprise Security.

View solution in original post

0 Karma

jervin_splunk
Splunk Employee
Splunk Employee

No, this is not currently supported. There is work going on in this area for a forthcoming release of Enterprise Security.

0 Karma
Get Updates on the Splunk Community!

Devesh Logendran, Splunk, and the Singapore Cyber Conquest

At this year’s Splunk University, I had the privilege of chatting with Devesh Logendran, one of the winners in ...

There's No Place Like Chrome and the Splunk Platform

WATCH NOW!Malware. Risky Extensions. Data Exfiltration. End-users are increasingly reliant on browsers to ...

Customer Experience | Join the Customer Advisory Board!

Are you ready to take your Splunk journey to the next level? 🚀 We invite you to join our elite squad ...